S
Principal Information Security Engineer
Job Description
Lead enterprise security planning and delivery for Minnesota Health and Human Services within the statewide Enterprise Security team.
Responsibilities
- Plan, design, implement, and maintain enterprise-wide information security programs to protect State information assets from internal and external threats
- Provide technical leadership across multiple security domains, including risk management, governance, network and application security, security architecture, incident response, business continuity, and compliance
- Recommend security policies, standards, and best practices
- Lead security risk assessments and reporting
- Ensure appropriate security controls are built into new systems
- Support training, certification, and project management initiatives
- Serve as a lead engineer for establishing and maintaining the cybersecurity framework within Minnesota Health and Human Services, supporting government entities in managing risk, strengthening security posture, and meeting enterprise security requirements
- Ensure security work integrates with broader IT systems and processes
Requirements
- Minimum five (5) years of experience performing IT business analysis functions
- Experience in information security, cybersecurity, or information technology, including enterprise security engineering, security architecture, risk management, or security operations
- Experience developing, implementing, or maintaining enterprise information security controls, security policies, standards, risk assessments, or governance processes using recognized security frameworks such as NIST, ISO 27001, COBIT, or similar industry standards
- Experience interpreting and applying information security or privacy regulations (e.g., HIPAA, CJIS, PCI DSS, or IRS FTI) and preparing security documentation, risk assessments, policies, or technical reports
- Experience leading or coordinating information security projects and providing technical guidance or consultation to IT staff, project teams, or business stakeholders
- Demonstrated ability to communicate clearly and effectively to facilitate mutual understanding
- Customer-focused approach grounded in active listening, empathy, and solution-oriented problem-solving to deliver positive user experiences
Technologies
- NIST
- ISO 27001
- COBIT
- HIPAA
- CJIS
- PCI DSS
- IRS FTI
- CISSP
- GSEC
- CEH
- CCE
- ENCE
- GSFI
- ITIL
Benefits
- Paid vacation and sick leave
- 12 paid holidays each year
- Low-cost medical, dental, vision, and prescription drug plans
- 6 weeks paid leave for parents of newborn or newly adopted children
- Pension plan that provides income when you retire (after working at least three years)
- Employer paid life insurance
- Short-term and long-term disability insurance
- Tax-free expense accounts for health, dental, and dependent care
- Resources that support physical, emotional, social, and financial well-being
Work Location and Telework
- Working onsite at 540 Cedar Street, St. Paul, MN at least 50% of the time
- Limited telework available
- Telework eligibility depends on residence:
- Candidates living in Minnesota or within 50 miles of the worksite in a bordering state (Iowa, North Dakota, South Dakota, Wisconsin) may telework up to 50%
- Minnesota residents living more than 50 miles from the worksite may be eligible to telework more than 50%
- Candidates living 50 miles or more from the worksite in a bordering state may work onsite 100% or may be telework eligible if relocating within 50 miles
Job Details
- Working Title: METS Principal Information Security Engineer
- Job Class: Information Technology Specialist 5
- Agency: Minnesota IT Services
- Division/Unit: Enterprise Security
- Job ID: 97269
- Location: St. Paul, MN (#LI-Hybrid)
- Full/Part Time: Full-Time
- Regular/Temporary: Unlimited
- Who May Apply: Open to all qualified job seekers
- Date Posted: 09/25/2026
- Closing Date: 10/08/2026
- Work Shift/Work Hours: Day Shift
- Days of Work: Monday - Friday
- Travel Required: No
- Salary Range: $40.43 - $69.11 / hourly; $84,417 - $144,301 / annually
- Job Class Option: Information Security
- Classified Status: Classified
- Bargaining Unit/Union: 214 - MN Assoc of Professional Empl/MAPE
- FLSA Status: Exempt - Professional
- Designated in Connect 700 Program for Applicants with Disabilities: Yes
Preferred Qualifications
- Professional certification in information security or information technology, such as CISSP, GSEC, CEH, CCE, ENCE, GSFI, ITIL, or a comparable industry-recognized credential
- Experience mentoring technical staff
- Experience leading or coordinating cross-functional security initiatives
- Experience serving as a subject matter expert on enterprise security technologies, incident management, vulnerability management, security risk management, or security governance
Additional Requirements
- Must pass legally required checks prior to employment, which may include: SEMA4 Records Check (applies to current and past state employees only), Criminal History Check, Reference Check, Social Security and Address Verification, Education Verification, CJIS Background Check, and other legally required checks
- Minnesota IT Services does not participate in the federal E-Verify program
- Minnesota IT Services is unable to sponsor applicants for work visas, including F-1 STEM OPT extensions, and cannot complete Form I-9 or other documentation requiring employer participation in E-Verify
- All applicants must be legally authorized to work in the United States at the time of application
How to Apply
- Select “Apply for Job” at the top of this page
- For questions about applying: Careers Help Desk at 651-259-3637 or email [email protected]
- Contact for position questions: Human Resources at [email protected]
Connect 700 Program
- To receive consideration as a Connect 700 Program applicant, apply online and email the Job ID, the Working Title, and your valid Proof of Eligibility Certificate by the closing date to [email protected]
Veterans
- To be considered for any Veteran's Status, you MUST indicate this on your application
- Recently Separated Veterans (RSV): top five RSV applicants who apply and meet qualifications for a vacancy shall be granted an interview (effective July 1, 2009)
- For RSV consideration, you must meet all Minimum Qualifications, meet RSV criteria, and submit a copy of DD-214 by the closing date to [email protected]
- Certain Disabled Vets: state agencies may appoint certain disabled veterans on a noncompetitive basis if you meet service requirements with a verified service-connected disability rating of at least 30%, provide qualifying documentation, meet Minimum Qualifications, and submit documentation by the closing date to [email protected]
Current State Employees
- Bidders: vacancy is open for bids and all qualified applicants simultaneously; filled in accordance with applicable union contract provisions; current employees of Minnesota IT Services in an Information Technology Specialist 5/Information Security position who are eligible to bid and apply within the seven (7) day bidding period will be considered prior to filling the position via other means
- Current State Employees: employment provisions (including seniority and leave accrual) vary among the three branches of Minnesota State government